Port Information
Port Information
The following table describes the listening ports on the various 5620 SAM Applications.
Table 7-1
5620 SAM firewall requirements
Default port
Type
Encryption
Description
5620 SAM Server and 5620 SAM Auxiliary (Statistics and Call Trace)
N/A
ICMP
N/A
ICMP Ping
The active 5620 SAM Server will periodically ping the 5620 SAM
Delegate Server to ensure reachability.
21
Ports from 1023 -
65536
TCP
None.
See SCP and SFTP as secure
alternatives
FTP (Passive)
This port is used to enable ftp communication from a 5620 SAM-O
Client to either the 5620 SAM Server or Auxiliary. Ftp is used by
the 5620 SAM-O Client to retrieve logToFile statistics or
findToFile results. (See
“FTP between the 5620 SAM Server and
5620 SAM Auxiliary Statistics Collector and the managed
network” (p. 7-15)
)
22
TCP
Dynamic Encryption
Cipher Suite and strength as
per RFC 4253
SSH/SCP/SFTP
This port is used for remote access, rsync between 5620 SAM
Servers, rsync between the 5620 SAM Databases, and scp/sftp to
5620 SAM OSS clients.
69
UDP
None.
TFTP
This port is used to do ftp when managing 1830 PSS equipment. If
there are none of these NEs in the network, this port is not required
80
TCP
None.
See port 443 for secure
communications.
HTTP
This port provides an HTTP interface for the User Documentation
Server (InfoCenter) and Web Applications. Also provides a
WebDav Server for snapshots and workorders.
162
UDP
Static Encryption
When SNMPv3 is configured.
Cipher and strength is NE
dependant.
SNMP traps
By default, this port on the 5620 SAM Server receives SNMP traps
from the network elements. This item is specified during the
installation of the server and can be changed.
(Not required by the 5620 SAM Auxiliary)
443
TCP
Dynamic Encryption
Encryption provided by
SSL/TLS. Strong ciphers are
supported. Selection of CBC
and AES ciphers provided by
TLS are supported.
HTTPS
This port provides an HTTPS (secure HTTP) interface for the User
Documentation Server (InfoCenter) and Web Applications. This is a
secure version of port 80. Used only if 5620 SAM Client is
connecting via SSL.
Also provides a WebDav Server for snapshots and workorders.
Security
Port Information
....................................................................................................................................................................................................................................
....................................................................................................................................................................................................................................
7-6
5620 SAM
3HE-09809-AAAG-TQZZA 13.0 R7
Issue 1
December 2015